db-normalization

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to run a local utility scripts/parse-schema.mjs and standard utilities like Grep and Glob for schema inspection. These actions are consistent with the skill's stated purpose of auditing database definitions.
  • [PROMPT_INJECTION]: As a tool designed to ingest and analyze external data (DDL files and SQL query results), the skill has an inherent surface for indirect prompt injection. However, this is the primary intended use-case, and no malicious patterns were identified in the instructions.
  • [DATA_EXFILTRATION]: No unauthorized network operations or exfiltration patterns were detected. The skill specifically mandates that any secrets found in the observed DDL must be redacted before being included in findings.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 10:01 PM
Security Audit — agent-trust-hub — db-normalization